Solved Windows Update Service not installed error: 0x80070424

Wim44

New member
Member
Local time
7:56 PM
Messages
28
PC 32bit
Windows 7 Ultimate
Windows Update does not work
What I did for diagnose and solving the problem:
1. System Update Readiness Tool (SURT)
Error: errorcode0x80070424
The service is not installed.
With fixit this is solved
the 32 bit update is installed
pc restarted
2. SFC Scan
Command Prompt
Run as Administrator
sfc /scannow
Scan notifies there are problems that could not be fixed
3. Windows Update
Via Start/Configuration: Windows Update
Error: at this moment there cannot be searched for updates, because
the Windows Update -service is not active. Probably you have to
restart your computer. (no error code)
Restarting pc does not help.

4. CBS.zip
The CBS log created by sfc /scannow is attached

5. Checking services:
Run: Services.msc
The BITS service is not in the list !

Any tip / advice appreciated.
Wim
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Your CBS.log shows the following problems....
Code:
 Line 17338: 2013-03-03 19:18:49, Info                  CSI    000001c4 [SR] Repairing 2 components
 Line 17339: 2013-03-03 19:18:49, Info                  CSI    000001c5 [SR] Beginning Verify and Repair transaction
 Line 17342: 2013-03-03 19:18:49, Info                  CSI    000001c7 [SR] Cannot repair member file [l:24{12}]"shellbrd.dll" of Microsoft-Windows-Branding-Shell-Ultimate, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
 Line 17345: 2013-03-03 19:18:49, Info                  CSI    000001c9 [SR] Cannot repair member file [l:16{8}]"img0.jpg" of Microsoft-Windows-Shell-Wallpaper-Windows, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
 Line 17348: 2013-03-03 19:18:49, Info                  CSI    000001cb [SR] Cannot repair member file [l:24{12}]"shellbrd.dll" of Microsoft-Windows-Branding-Shell-Ultimate, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
 Line 17349: 2013-03-03 19:18:49, Info                  CSI    000001cc [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Branding-Ultimate-Client-Package~31bf3856ad364e35~x86~~6.1.7601.17514.BUC Namespace"
 Line 17354: 2013-03-03 19:18:49, Info                  CSI    000001cf [SR] Could not reproject corrupted file [ml:520{260},l:64{32}]"\??\C:\Windows\Branding\Shellbrd"\[l:24{12}]"shellbrd.dll"; source file in store is also corrupted
 Line 17359: 2013-03-03 19:18:49, Info                  CSI    000001d2 [SR] Cannot repair member file [l:16{8}]"img0.jpg" of Microsoft-Windows-Shell-Wallpaper-Windows, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
 Line 17360: 2013-03-03 19:18:49, Info                  CSI    000001d3 [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Branding-Ultimate-Client-Package~31bf3856ad364e35~x86~~6.1.7601.17514.BUC Namespace"
 Line 17365: 2013-03-03 19:18:49, Info                  CSI    000001d6 [SR] Could not reproject corrupted file [ml:520{260},l:72{36}]"\??\C:\Windows\Web\Wallpaper\Windows"\[l:16{8}]"img0.jpg"; source file in store is also corrupted
 Line 17378: 2013-03-03 19:18:49, Info                  CSI    000001d9 [SR] Repair complete

I'll post a fix for it soon - however, it may not work properly unless the system is in a fit state (which is doubtful, at present)
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Farbar Service Scanner Version: 03-03-2013
Ran by Wim (administrator) on 03-03-2013 at 20:18:30
Running from "D:\ZIP\Backup\Windows\sevenforums"
Windows 7 Ultimate Service Pack 1 (X86)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.

Windows Firewall:
=============
mpsdrv Service is not running. Checking service configuration:
The start type of mpsdrv service is OK.
The ImagePath of mpsdrv service is OK.
MpsSvc Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of MpsSvc. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of MpsSvc. The value does not exist.
Unable to retrieve ServiceDll of MpsSvc. The value does not exist.
bfe Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open bfe registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open bfe registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open bfe registry key. The service key does not exist.

Firewall Disabled Policy:
==================

System Restore:
============
System Restore Disabled Policy:
========================

Action Center:
============
Windows Update:
============
wuauserv Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.
BITS Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.

Windows Autoupdate Disabled Policy:
============================

Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open WinDefend registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open WinDefend registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open WinDefend registry key. The service key does not exist.

Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1

Other Services:
==============
Checking Start type of SharedAccess: ATTENTION!=====> Unable to retrieve start type of SharedAccess. The value does not exist.
Checking ImagePath of SharedAccess: ATTENTION!=====> Unable to retrieve ImagePath of SharedAccess. The value does not exist.
Checking ServiceDll of SharedAccess: ATTENTION!=====> Unable to open SharedAccess registry key. The service key does not exist.
Checking Start type of iphlpsvc: ATTENTION!=====> Unable to open iphlpsvc registry key. The service key does not exist.
Checking ImagePath of iphlpsvc: ATTENTION!=====> Unable to open iphlpsvc registry key. The service key does not exist.
Checking ServiceDll of iphlpsvc: ATTENTION!=====> Unable to open iphlpsvc registry key. The service key does not exist.

File Check:
========
C:\Windows\system32\nsisvc.dll => MD5 is legit
C:\Windows\system32\Drivers\nsiproxy.sys => MD5 is legit
C:\Windows\system32\dhcpcore.dll => MD5 is legit
C:\Windows\system32\Drivers\afd.sys => MD5 is legit
C:\Windows\system32\Drivers\tdx.sys => MD5 is legit
C:\Windows\system32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\system32\dnsrslvr.dll => MD5 is legit
C:\Windows\system32\mpssvc.dll => MD5 is legit
C:\Windows\system32\bfe.dll => MD5 is legit
C:\Windows\system32\Drivers\mpsdrv.sys => MD5 is legit
C:\Windows\system32\SDRSVC.dll => MD5 is legit
C:\Windows\system32\vssvc.exe => MD5 is legit
C:\Windows\system32\wscsvc.dll => MD5 is legit
C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\system32\wuaueng.dll => MD5 is legit
C:\Windows\system32\qmgr.dll => MD5 is legit
C:\Windows\system32\es.dll => MD5 is legit
C:\Windows\system32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\system32\ipnathlp.dll => MD5 is legit
C:\Windows\system32\iphlpsvc.dll => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit

**** End of log ****
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
Looks like you've had a run-in with ZeroAccess?

Here's the fix for the CBS/SFC errors


I've uploaded a file - w44aa.zip - to my SkyDrive at Noel's SkyDrive
Please download and save it.

Right-click on the saved file and select Extract all...
Change the target to C:\ and click on Extract
Close all windows (it would be a good idea to print these instructions!)
Now reboot to the Repair Environment - as soon as the machine restarts, start tapping F8 - this should bring up the Advanced Boot Menu, at the top of which should be the option 'Repair my Computer'
Pick that
You'll have to log in with your username and password.

Pick the option to use a Command Prompt
At the prompt type
DIR C:\w44aa
hit the enter key - if you get a 'Not Found' error try
DIR D:\w44aa
or
DIR E:\w44aa


The drive letter in use when you find the folder will need to be substituted (for<drive>) into the following command...

XCOPY <drive>:\w44aa <drive>:\windows\winsxs /y /i /s /v /h

(e.g. XCOPY P:\wfire P:\windows\winsxs /y /i /s /v /h )

run the command (it should take almost no time)and when the prompt returns, type
EXIT
and hit the Enter key to exit Command Prompt - reboot to Normal Mode Windows.

Now run SFC /SCANNOW in an Elevated Command Prompt
then reboot and upload the new CBS.log file to your reply



I'll post a fix for the service errors in a while.


 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Usually, with those errors, BFE is missing as well - so here's the fix for all three base services....

I've uploaded a file - wubitsbfe.zip - to my SkyDrive at Noel's SkyDrive
Please download and save it.
Right-click on the saved file and select Extract all...

save it to the default location.
right-click on the extracted file, and select Merge.
Accept the warnings - you should get a 'success' message.
reboot and run the FarBar scanner again - post the new log.
Then we'll fix the remaining services.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Farbar Service Scanner Version: 03-03-2013
Ran by Wim (administrator) on 03-03-2013 at 23:18:44
Running from "D:\ZIP\Backup\Windows\sevenforums"
Windows 7 Ultimate Service Pack 1 (X86)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.

Windows Firewall:
=============
Firewall Disabled Policy:
==================
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=DWORD:0

System Restore:
============
System Restore Disabled Policy:
========================

Action Center:
============
Windows Update:
============
Windows Autoupdate Disabled Policy:
============================

Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.

Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1

Other Services:
==============

File Check:
========
C:\Windows\system32\nsisvc.dll => MD5 is legit
C:\Windows\system32\Drivers\nsiproxy.sys => MD5 is legit
C:\Windows\system32\dhcpcore.dll => MD5 is legit
C:\Windows\system32\Drivers\afd.sys => MD5 is legit
C:\Windows\system32\Drivers\tdx.sys => MD5 is legit
C:\Windows\system32\Drivers\tcpip.sys
[2013-03-03 22:10] - [2013-01-03 06:05] - 1293672 ____A (Microsoft Corporation) 7C0507D2391AF5933600CBCED799F277
C:\Windows\system32\dnsrslvr.dll => MD5 is legit
C:\Windows\system32\mpssvc.dll => MD5 is legit
C:\Windows\system32\bfe.dll => MD5 is legit
C:\Windows\system32\Drivers\mpsdrv.sys => MD5 is legit
C:\Windows\system32\SDRSVC.dll => MD5 is legit
C:\Windows\system32\vssvc.exe => MD5 is legit
C:\Windows\system32\wscsvc.dll => MD5 is legit
C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\system32\wuaueng.dll => MD5 is legit
C:\Windows\system32\qmgr.dll => MD5 is legit
C:\Windows\system32\es.dll => MD5 is legit
C:\Windows\system32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\system32\ipnathlp.dll => MD5 is legit
C:\Windows\system32\iphlpsvc.dll => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit

**** End of log ****

Extract wubitsbfe.zip and apply .reg file: OK
After reboot of the PC Windows Update can be used again.
The Windows Update history has gone.
In add/remove updates all updates are still listed and complete.
 
Last edited:

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
The img0.jpg is not replaced by original one.
Shellbrd.dll is not replaced too.

[F8] procedure for repair action did not work on Compaq PC,
nor did other function keys as candidate for this function.

The original img0.jpg was replaced after install of W7 by a more
representative wallpaper file than the original one.
 
Last edited:

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
The new CBS.log is attached.

Windows Update:
OK for Windows 7 and Office 2010.
The Windows Update History file was removed.
Just the most recent updates are shown now.

After running sfc /scannow:
some problemes solved, other problems could not be solved.
See: CBS.zip
 
Last edited:

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
How did you repair the SharedAccess and IPHLPSVC errors? - they were not included in my registry fix??

Please try running the CheckSUR tool now and we'll see what we get.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
1/. Windows Update: already OK before checkSUR

2/. Running CheckSUR (update KB789421-v26-x86.msu): OK

3/. Windows Update: after CheckSUR (update february 2013): OK

4/. sfc /scannow

5/. checking location: C:\Windows\Branding\ShellBrd
At this location: shellbrd.dll (original)

6/ checking location:
img0.jpg
this file is available, provided manually (long ago)
so not provided by Resource Hacker that can change in cooperation with shellbrd.dll the original file into another one

Is just changing img0.jpg by another file img0.jpg not allowed?
The Windows Logo on the System Properties Page shows the manually changed img0.jpg changed after installation of W7 x86.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
checkSUR: OK

Attached: CBS2.log

FSS:

Farbar Service Scanner Version: 03-03-2013
Ran by Wim (administrator) on 04-03-2013 at 10:49:21
Running from "D:\ZIP\Backup\Windows\sevenforums"
Windows 7 Ultimate Service Pack 1 (X86)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.

Windows Firewall:
=============
Firewall Disabled Policy:
==================
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=DWORD:0

System Restore:
============
System Restore Disabled Policy:
========================

Action Center:
============
Windows Update:
============
Windows Autoupdate Disabled Policy:
============================

Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.

Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1

Other Services:
==============

File Check:
========
C:\Windows\system32\nsisvc.dll => MD5 is legit
C:\Windows\system32\Drivers\nsiproxy.sys => MD5 is legit
C:\Windows\system32\dhcpcore.dll => MD5 is legit
C:\Windows\system32\Drivers\afd.sys => MD5 is legit
C:\Windows\system32\Drivers\tdx.sys => MD5 is legit
C:\Windows\system32\Drivers\tcpip.sys
[2013-03-03 22:10] - [2013-01-03 06:05] - 1293672 ____A (Microsoft Corporation) 7C0507D2391AF5933600CBCED799F277
C:\Windows\system32\dnsrslvr.dll => MD5 is legit
C:\Windows\system32\mpssvc.dll => MD5 is legit
C:\Windows\system32\bfe.dll => MD5 is legit
C:\Windows\system32\Drivers\mpsdrv.sys => MD5 is legit
C:\Windows\system32\SDRSVC.dll => MD5 is legit
C:\Windows\system32\vssvc.exe => MD5 is legit
C:\Windows\system32\wscsvc.dll => MD5 is legit
C:\Windows\system32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\system32\wuaueng.dll => MD5 is legit
C:\Windows\system32\qmgr.dll => MD5 is legit
C:\Windows\system32\es.dll => MD5 is legit
C:\Windows\system32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\system32\ipnathlp.dll => MD5 is legit
C:\Windows\system32\iphlpsvc.dll => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit

**** End of log ****


NB:
img0.jpg was after install of W7 x86 manually replaced my another image file as the Windows Logo on the System Properties Page. Resource Hacker program and shellbrd.dll were not used.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
Please post the CheckSUR.log file

img0.jpg should not be replaced - it's considered part of the OS.
What you can do, is place your preferred image in a safe place, and change the registry to point to it instead.
HKEY_USERS\<USERGUID>\Software\Microsoft\Internet Explorer\Desktop\General
You should also be able to create that as default for all users using the following Key.....
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Desktop\General which you will have to create

Something has altered your shellbrd.dll file - it doesn't have the expected hash.
Did you apply the fix I gave you?
Please run the following commands and post the results.

DIR C:\w44aa
DIR C:\Windows\winsxs\w44aa
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
...and I forgot to ask - What Firewall are you using?
Windows Firewall is switched off - if you don't have a 3rd-party firewall, you should switch it back on.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
Firewall: AVG2012 Internet Security.
Windows firewall: OFF
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
..That's OK then :)
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
dir C:\w44aa
04-03-2013 11:35 <DIR> .
04-03-2013 11:35 <DIR> ..
11-06-2009 04:01 642.987 img0.jpg
14-07-2009 01:10 1.596.928 shellbrd.dll
04-03-2013 11:35 <DIR> x86_microsoft-windows-b..ding-shell-ultimate_31bf3856ad364e35_6.1.7600.16385_none_c475f8652bb433af
04-03-2013 11:35 <DIR> x86_microsoft-windows-s..l-wallpaper-windows_31bf3856ad364e35_6.1.7600.16385_none_dae87c5811c55450

I extracted your 2 files img0.jpg and shellbrd.dll into directoty c:\w44aa.
Also your directories with the same contents I placed there (just to have it)

The F8 xcopy procedure you described did not work (as stated above), so not done.

I could xcopy img0.jpg and shellbrd.dll to the directories where they have to be?
I can findout (or you know) what the directories are to put img0.jpg and shellbrd.dll
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
NONONO!
All I asked was for you to extract the FOLDER (including its contents) to the C:\ drive.
I did NOT ask for anything more - delete the current C:\w44aa folder completely.

Please then follow the instructions in my original post.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Asus K52F or Lenovo B51-80
OS
Win 7 x64 Home Premium (and x86 VirtualBox VM)/Win10
CPU
i3 370M/i7 6500U
Motherboard
Asus/Lenovo
Memory
8GB - finally :)/8GB
Graphics Card(s)
it's an i3, dude!/dual Intel&nVidia
Sound Card
onboard
Monitor(s) Displays
15.6" built-in
Screen Resolution
1366x768/1920x1080
Hard Drives
750GB Seagate internal
Sundry external drives attached to other computers on the local network
1TB SSD on the Lenovo
PSU
n/a
Internet Speed
as much as I can get - usually on a dongle/phone, so <1MB/s
Antivirus
MSE/Defender
Browser
IE11/12/Edge/Chrome/FF(if I must)
As stated before: the F8 xcopy procedure (you described) could not be done.
Also other Fn keys do not provide the "F8" function.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Desktop / Laptop
OS
Windows7 Home Premium x64 and Ultimate x64 / x86
CPU
i7-2600
Memory
16GB
Screen Resolution
1920x1080
Browser
IE11
Back
Top